F

Senior Cloud Engineer

Forta Solutions
Full-time
On-site
Denver, Colorado, United States
$130,000 - $180,000 USD yearly

About the Role

We're seeking an exceptional Senior Cloud Engineer to architect and maintain our complex AWS multi-account infrastructure and growing customer networking integrations. As our platform scales, you'll own increasingly sophisticated VPC/VPN connections, enterprise CI/CD pipelines, and infrastructure as code deployments. This role is critical for someone who thrives on solving complex networking challenges at scale.

 

Core Responsibilities

 

Networking & AWS Infrastructure (Primary Focus)

• Design complex AWS networking across multi-account organizations (9+ accounts)

• Build and maintain customer VPN/VPC integrations, Transit Gateway, and multi-region architectures

• Optimize network performance, security groups, routing tables, and subnet designs

• Manage security services: GuardDuty, Security Hub, AWS Config, Macie, Detective, Inspector

• Implement high availability and disaster recovery networking patterns

 

CI/CD & Infrastructure as Code

• Build GitLab CI/CD pipelines with OIDC authentication and git-flow branching strategies

• Write and maintain Terraform code across multiple infrastructure repositories

• Develop reusable Terraform modules and automated deployment workflows

• Integrate Datadog monitoring and implement GitLab API-driven automation

 

Security & Compliance

• Implement least-privilege IAM policies and OIDC-based authentication

• Ensure compliance with security standards (CIS, PCI-DSS, AWS Best Practices)

• Manage AWS Secrets Manager and implement proper rotation policies

• Respond to security findings and collaborate on organization-wide security posture

 

Required Qualifications

 

Technical Skills

• 7+ years cloud infrastructure experience with deep AWS expertise

• 5+ years hands-on networking (VPC, VPN, Transit Gateway, routing, security groups)

• Expert-level Terraform proficiency with large-scale IaC deployments

• Strong GitLab CI/CD experience (YAML pipelines, OIDC, automation)

• Solid git-flow and version control best practices

• Experience with AWS Organizations, multi-account strategies, cross-account IAM

• Proven ability to design and troubleshoot complex network architectures

• Strong Linux/bash scripting and automation skills

 

Highly Valued

• AWS Certified Solutions Architect Professional or Advanced Networking Specialty

• Customer-facing VPN/VPC integrations and hybrid cloud connectivity

• Datadog monitoring, ECS/Fargate, container orchestration

• Experience with financial services or regulated industries

• Python or Go for infrastructure automation

 

Our Infrastructure Stack

 

Cloud: AWS multi-account organization (mgmt, security, dev, qa, staging, preprod, prod, prod-wab)

IaC: Terraform 1.5+ with GitLab HTTP backend

CI/CD: GitLab CI/CD with OIDC authentication, git-flow strategy

Networking: Multi-region VPCs, VPN connections, Transit Gateway, customer integrations

Compute: ECS/Fargate, Lambda, EC2

Security: GuardDuty, Security Hub, AWS Config, Macie, Detective, Inspector v2

Monitoring: Datadog (US5), CloudWatch, VPC Flow Logs

 

Compensation & Benefits

 

• Base Salary: $130,000 - $180,000 (commensurate with experience)

• Annual performance bonus

• Equity/stock options

• Comprehensive health, dental, and vision insurance

• 401(k) with company match

• Flexible PTO policy

• Professional development budget (AWS certifications, conferences, training)

• Home office stipend

• Fully remote work environment

 

What You'll Excel At

 

• Explaining complex technical concepts to diverse audiences

• Balancing speed with quality and security best practices

• Working independently while collaborating across distributed teams

• Documenting architecture decisions and maintaining clear runbooks

• Staying current with AWS services and cloud best practices

• Mentoring engineers and conducting thorough code reviews

 

Why This Role Matters

 

Your work directly impacts customer-facing infrastructure reliability, security posture for financial services, scalability for growing demand, and developer velocity. You'll own critical infrastructure that must be rock-solid while enabling innovation.

 

Interview Process

 

1. Initial technical screening (30 min)

2. AWS networking system design interview (90 min)

3. Terraform/IaC practical exercise (take-home or pair programming)

4. Team fit and leadership discussion (60 min)

 

To apply, please submit your resume and a brief cover letter highlighting your most complex AWS networking project.

**Notice of AI-Assisted Resume Screening**
This employer uses artificial intelligence and algorithmic tools to review resumes and support initial applicant assessments. While these tools enhance efficiency, they are monitored by our team to promote fair and unbiased decision-making—and we uphold all applicable federal and state anti‑discrimination laws (including Title VII and the ADA).
Where required by law, we provide this notice in accordance with applicable regulations. You may request human review or an alternative assessment method if desired.

 

Apply now
Share this job